๐Ÿ” CVE Alert

CVE-2026-30912

UNKNOWN 0.0

Apache Airflow: Exposing stack trace in case of constraint error

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In case of SQL errors, exception/stack trace of errors was exposed in API even if "api/expose_stack_traces" was set to false. That could lead to exposing additional information to potential attacker. Users are recommended to upgrade to Apache Airflow 3.2.0, which fixes the issue.

CWE CWE-668
Vendor apache software foundation
Product apache airflow
Published Apr 18, 2026
Last Updated Apr 18, 2026
Stay Ahead of the Next One

Get instant alerts for apache software foundation apache airflow

Be the first to know when new unknown vulnerabilities affecting apache software foundation apache airflow are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Apache Software Foundation / Apache Airflow
0 < 3.2.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/apache/airflow/pull/63028 lists.apache.org: https://lists.apache.org/thread/tp6kz1hnfb3zsrrtg19myo8x5x80w8r9 openwall.com: http://www.openwall.com/lists/oss-security/2026/04/17/5

Credits

Masamune - Unit515 OPSWAT Jason(Zhe-You) Liu